https://www.microsoft.com/en-us/security/blog/2023/07/14/analysis-of-storm-0558-techniques-for-unauthorized-email-access/

  • dualmindblade [he/him]
    ·
    1 year ago

    I have just skimmed this so maybe it's answered, but seems the entire thing boils down to:

    Storm-0558 acquired an inactive MSA consumer signing key

    How?